Security

Control your data without granting write access

The website intelligence flow is designed for analysis rather than automatic changes. Each source uses the smallest useful scope and stays isolated between businesses.

01

Read-only by default

Analysis does not need permission to change WordPress content, GA4 settings, Search Console properties, products, stock or orders.

  • No automatic publishing
  • No analytics configuration changes
  • No commerce write actions
02

Minimum necessary data

Only data required for the approved question should be used. Names, email addresses, form messages and other personal details are not sent in the landing page's analytics events.

  • Aggregated metrics where sufficient
  • WooCommerce only for deeper commerce scope
  • No assumptions when a source or field is missing
03

Isolation and revocation

Sources and credentials must resolve to the correct business before use. Access can be revoked at the source platform and the corresponding connection disabled.

  • Tenant-aware authorization
  • No mixing of customer environments
  • Controlled access revocation
04

What we do not claim

Read-only scope reduces operational risk, but it does not replace correct authentication, secure credential handling, privacy review or validation of important decisions.